MALICIOUS — CRITICAL
krakennloginnus[.]wordpress[.]com
The domain krakennloginnus.wordpress.com has been identified as a confirmed phishing site specifically designed to impersonate the Kraken cryptocurrency exchange platform.
- VirusTotal
- 9/95
- Blocklists
- No stored match
- Kullanılabilirlik
- İçerik kullanılamıyor · HTTP 410
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
krakennloginnus.wordpress.com — İçerik kullanılamıyor (HTTP 410). Marka kimliğine bürünme: Kraken; Dolandırıcılık türü: Crypto Scam. Kanıt özeti: VirusTotal 9/95 (ChainPatrol, alphaMountain.ai, BitDefender, CRDF, G-Data); Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 80/100. Kayıt kuruluşu: MarkMonitor.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Evidence Analysis
krakennloginnus.wordpress.com: Confirmed Kraken Phishing Site
krakennloginnus.wordpress.com is a confirmed phishing site impersonating Kraken. It was flagged by 9 of 95 VirusTotal vendors and has been taken offline.
The domain krakennloginnus.wordpress.com has been identified as a confirmed phishing site specifically designed to impersonate the Kraken cryptocurrency exchange platform. This domain is currently offline, but while active it posed a significant threat to users attempting to access legitimate Kraken services. The site's page title, "Kráken Login | Sign In to Kráken Account – kraken Log In Now," was crafted to deceive visitors into believing they were on an official Kraken login page, thereby tricking them into entering sensitive credentials.
Technical analysis reveals that krakennloginnus.wordpress.com was flagged by 9 out of 95 security vendors on VirusTotal, indicating broad recognition of its malicious nature. The domain was registered through MarkMonitor, Inc. and was created on March 3, 2000, which is unusually old for a phishing domain, suggesting it may have been repurposed or compromised. It resolved to IP address 192.0.78.12 and used an SSL certificate issued by Let's Encrypt (type E8), which is commonly abused by phishing sites. Additionally, it appeared on one security blocklist and was flagged by Google Safe Browsing for phishing activity. These indicators collectively confirm the domain's malicious intent.
As of the latest assessment, krakennloginnus.wordpress.com has been taken offline, mitigating immediate risk. However, users who may have interacted with this site should take immediate action: change any passwords entered on the page, enable two-factor authentication on their Kraken accounts, and monitor for unauthorized activity. PhishDestroy recommends always verifying URLs before entering credentials, using bookmark links for sensitive services, and reporting any suspected phishing domains to relevant authorities. Staying vigilant against brand impersonation attempts is crucial in protecting digital assets.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Veri kapsamı12 recorded checks
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Registration: wordpress.com
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For the registrable domain wordpress.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler · 6 identified
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.
wordpress.org %100 güvenNginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org %100 güvenHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Arşivlenmiş Kanıtlar
Kanıtlar ve Dış RaporlarIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.